Contents
vi
Cisco Intrusion Prevention System Sensor CLI Configuration Guide for IPS 7.2
OL-29168-01
Configuring Promiscuous Mode
4-14
Understanding Promiscuous Mode
4-14
Configuring Promiscuous Mode
4-15
IPv6, Switches, and Lack of VACL Capture
4-15
Configuring Inline Interface Mode
4-16
Understanding Inline Interface Mode
4-16
Configuring Inline Interface Pairs
4-17
Configuring Inline VLAN Pair Mode
4-21
Understanding Inline VLAN Pair Mode
4-21
Configuring Inline VLAN Pairs
4-22
Configuring VLAN Group Mode
4-26
Understanding VLAN Group Mode
4-26
Deploying VLAN Groups
4-27
Configuring VLAN Groups
4-28
Configuring Inline Bypass Mode
4-33
Understanding Inline Bypass Mode
4-33
Configuring Inline Bypass Mode
4-34
Configuring Interface Notifications
4-35
Configuring CDP Mode
4-36
Displaying Interface Statistics
4-37
Displaying Interface Traffic History
4-40
CHAPTER
5
Configuring Virtual Sensors
5-1
Virtual Sensor Notes and Caveats
5-1
Understanding the Analysis Engine
5-2
Understanding Virtual Sensors
5-2
Advantages and Restrictions of Virtualization
5-2
Inline TCP Session Tracking Mode
5-3
Normalization and Inline TCP Evasion Protection Mode
5-4
HTTP Advanced Decoding
5-4
Adding, Editing, and Deleting Virtual Sensors
5-4
Adding Virtual Sensors
5-5
Editing and Deleting Virtual Sensors
5-9
Configuring Global Variables
5-12
CHAPTER
7
Defining Signatures
7-1
Signature Definition Notes and Caveats
7-1